plan-capacitor-hardening
Pass
Audited by Gen Agent Trust Hub on Aug 25, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill instructs the agent to process external, untrusted project configuration files including
capacitor.config.*,AndroidManifest.xml, andInfo.plist. These files represent an attack surface where a malicious user or file could embed instructions designed to manipulate the agent's findings or bypass its logic.\n - Ingestion points: The agent is directed to inventory and read specific local configuration and manifest files from the mobile project.\n
- Boundary markers: There are no explicit instructions to use delimiters or to ignore instructions embedded within the data being analyzed.\n
- Capability inventory: The skill enables the agent to read local file system data and generate a security hardening plan based on the results.\n
- Sanitization: The skill does not specify any sanitization or validation logic to handle potentially malicious content within the analyzed files.
Audit Metadata